You are doing online surfing and all of sudden a pop up comes saying FBI Cybercrime Division – “Your PC is blocked” virus. You start wondering why FBI Cybercrime Division is blocking your computer. The message on screen reads FBI Cybercrime Division, International Cyber Protection Alliance (IPSPA) has blocked your computer as user has violated law of United States of America. Neither the FBI nor the International Cyber Protection Alliance (IPSPA) is blocking your computer. To unlock your computer, this ransomware demands you pay fine of $300 or face prison time. It tells you to pay fine within 72 hours. Below is the actual message from one of the blocked computer by FBI Cybercrime Division Virus:

ATTENTION! Your PC is blocked due at least one of the reasons specified below. You have been violating Copyright and Related Rights Law. (Video, Music, Software) and illegally using or distributing copyrighted content, thus infringing Article 1, Section 2, Clause 8, also known as the Copyright of the Criminal Code of United States of America. Article 1, Section 2, Clause 8 of the Criminal Code provides for a fine of 200 to 500 minimal wages or a deprivation of liberty for 2 to 8 years. You have been viewing or distributing prohibited Pornographic content (Child Porn/Zoophilia and etc.). Thus violating Article 2, Section 1, and Clause 2 of the Criminal Code of United States of America. Article 2, Section I, Clause 2 of the Criminal Code provides for a deprivation of liberty for 4 to 12 years. Illegal access to computer data has been initiated from your PC, or you have been… Article 2, Section 1, Clause 8 of the Criminal Code provides for a fine of up to 5200,000 and/or a deprivation of liberty for 4 to 9 years. Illegal access has been initiated from your PC without your knowledge or consent, your PC may be infected by malware, thus you are violating the law On Neglectful Use of Personal Computer. Article 2, Section 1, Clause 1 of the Criminal Code provides for a fine of up to 5200,000 and/or deprivation of liberty for 4 to 9 years. Spam distribution or other unlawful advertising has been effected from your PC as a profit-seeking activity or without your knowledge; your PC may be infected by malware. Article 2, Section 1, Clause 2 of the Criminal Code provides for a fine of up to 5500,000 and a deprivation of liberty of up to 6 years. In case this activity has been affected without your knowledge, you fall under the above mentioned Article 2, Section 1, Clause 1 of the Criminal Code of United States of America. Your personality and address are currently being identified, a criminal case is going to be initiated against you fewer than one or more articles specified above within the next 72 hours. Pursuant to the amendment to the Criminal Code of United States of America of February 05, 2013, this law infringement (if it is not repeated – first time) may be considered as conditional in case you pay the fine to the State. Fines may only be paid within 72 hours after the infringement. As soon as 72 hours elapse, the possibility to pay the fine expires, and a criminal case is initiated against you automatically within the next 72 hours! To unblock the computer you must pay the fine through MoneyPak of $300. When you pay the fine, your PC will get unlocked in 1 to 72 hours after the money is put into the State’s account. Since your PC is unlocked, you will be given 7 days to correct all violations. In case all violations are not corrected after 7 working days, your PC will be blocked again, and a criminal case will be initiated against you automatically fewer than one or more articles specified above.

The message appears to be real on first look. However, any of Government organization does not function in this way and they do not harass law abiding citizen in this manner. So just do not panic and pretend the message does not exist. You still need to unlock your screen and remove this nasty ransomware. To remove this International Cyber Protection Alliance (IPSPA) virus or FBI Cybercrime Division – “Your PC is blocked” virus you must go into safe mode in networking. Sometime virus does not let you get into safe mode in such case keep your computer in shutdown mode and consult with technician. If your computer keeps rebooting and keep blocking with same screen then more than likely you will be victim of BOSD (black/blue screen of death). Please follow our guide and see if you can unblock PC and remove this virus easily.

It locks computer It accuses user for violating law of the country and Government has block the access You are unable to launch registry editor, task manager or any other program Computer just shows same screen

Step 1:Print out these instructions as you will need to shut down the computer in next step. Need help call us at: 800-518-8533

Step 2:Now power down the FBI Cybercrime Division “Your PC is blocked” virus infected computer and wait for 30 Seconds before you turn on.

Step 3:Now please turn ON the computer and immediately keep hitting F8 until you see WINDOWS ADVANCED OPTIONS MENU as shown below.

Step 4:In the WINDOWS ADVANCED OPTIONS MENU, go down to the SAFE MODE WITH NETWORKING using the arrow keys on the board. Then press ENTER on the keyboard. This will take your computer to Safe mode. Safe Mode will cause the display and desktop icons to appear changed. This is normal. No need to Panic as it is due to FBI Cybercrime Division “Your PC is blocked” virus.

Step 5:This, FBI Cybercrime Division “Your PC is blocked” virus, infection may change computer windows settings to use a proxy server that will not allow you to browse any pages on the Internet with Internet Explorer. We will first need to fix this as we will need to download malware removal utilities. They are safe and very reputed in Computer Industry. Now hold down the WINDOWS key and then press the R key.

Step 6:The RUN dialog box will appear. Type iexplore.exe In the RUN dialog and click OK button.

Step 7:You will see Internet Explorer. On the top navigation click TOOLS then under the sub-menu of TOOLS choose INTERNET OPTIONS as shown below.

Step 8: Now find the CONNECTIONS tab within the INTERNET OPTIONS dialog box and click on it. Then click the LAN SETTINGS button.

Step 9:If there is a check-mark in the box named “Use a proxy server for your LAN”, under the PROXY SERVER section, then unchecked the box. If there is not a check mark located in the box then you can skip this step and move on to next step.

Step 10:Now hit the OK button to close the LOCAL AREA NETWORK dialog box. Then press the OK button to close the INTERNET OPTIONS dialog box.

Need help for removing with FBI Cybercrime Division “Your PC is blocked” virus infection then call us at 800-518-8533 or chat with our experts.

Step 11Now we must end all the processes that belong to FBI Cybercrime Division “Your PC is blocked” virus so that it does not interfere with your ability clear your computer. Inspector-[rnd char].exe and Protector-[rnd char].exe are the processed that needs to be stopped. To do this we need to download Rkill, developed by Bleepingcomputer to help stop the computer process of FBI Cybercrime Division “Your PC is blocked” virus. Now please hold down the WINDOWS key and the R key simultaneously to open RUN dialog box.

Step 13:Save the Rkill.exe on your desktop. Double-click the Rkill icon and run Rkill.exe. You will see a black MS DOS dialog box. Now it will kill all the processes of FBI Cybercrime Division “Your PC is blocked” virus. It will take several minute before a Notepad file containing log information on what Rkill found will open. You may review it and close notepad file.

Step 14:Now you are ready to removal all the infection related to FBI Cybercrime Division “Your PC is blocked” virus. For that you need to use Malwarebytes software. It is a very popular malware and spyware removal application. Now please hold down the WINDOWS key and the R key simultaneously to open RUN dialog box. Type “iexplore.exe http://www.fixpcyourself.com/mbam.exe” and hit the OK button.

Need help for removing with FBI Cybercrime Division “Your PC is blocked” virus infection then call us at 800-518-8533 or chat with our experts.

Step 23:In this step let the UPDATE and LAUNCH checked as it is to update the application with latest malware definition to capture all the malwares then click FINISH button.

Step 24:Once update is done then Scanner screen will launch. Make sure to select PERFORM FULL SCAN is selected to clean up FBI Cybercrime Division “Your PC is blocked” virus infection. Click on SCAN button to start the scan.

Step 25:Now choose the local drives that you want to scan from the dialog box and click SCAN button.

Step 26:Be patient as the scan will take several minutes before it cleans up FBI Cybercrime Division “Your PC is blocked” virus infection. Once the scan is finished, a message box saying the scan is complete will appear. Click OK button to close the box then click SHOW RESULTS button.

Step 27:From results dialog box choose REMOVE SELECTED button to remove all the infections found. Malwarebytes will also delete all of the files and registry keys affected by FBI Cybercrime Division “Your PC is blocked” virus and add them to the quarantine.

Step 28:Malwarebytes may require you to reboot the PC to complete the FBI Cybercrime Division “Your PC is blocked” virus (Removal Steps). After completions reboot your computer Malwarebytes will be launched, please follow the instructions on the screen and continue the removal process. Once everything is clean out a log will be open created by Malwarebytes. Please reviewed it and closed it. Now your computer should be free of FBI Cybercrime Division “Your PC is blocked” virus. Enjoy.

1. Run the malwarebytes using below steps to remove Trojan.Ransomlock.2. Make sure your computer is up to date with windows updates to protect against trojans.3. Make sure Windows Firewall is enable.4. Install reputable and commercial virus removal tool to remove Trojan.Ransomlock .5. Keep the Antivirus active and current6. Call tech support help line: 1-800-518-8533 if you are unable remove this infection or have any question or concern.

If Safe Mode with Networking doesn’t work you can go to Safe Mode with Command Prompt. Search for winlogon and and look for the keys named Shell with explorer.exe as their entry. This virus adds something to those shell keys to start it with explorer.exe. The line will read something like ‘explorer.exe, c:\somethingsomething\something.dll.’ Just delete everything that doesn’t say explorer.exe in those Shell lines. After going through all the keys and the search says it has reached the end of the registry you should be able to restart into Safe Mode with Networking.